More Info:

Ensures master authorized networks is set to enabled on Kubernetes clusters

Risk Level

Low

Address

Security

Compliance Standards

HITRUST, SOC2, NISTCSF, PCIDSS

Triage and Remediation

Remediation

To remediate the misconfiguration “Master Authorized Network Should Be Enabled” in GCP, you can follow these steps:

  1. Open the Google Cloud Console and log in to your account.
  2. Select the project that you want to remediate the misconfiguration for.
  3. In the left navigation menu, click on “IAM & Admin” and then click on “Service Accounts”.
  4. Find the service account that you want to enable Master Authorized Networks for and click on its name.
  5. In the “Service account details” page, click on the “Edit” button at the top of the page.
  6. Scroll down to the “Authorized networks” section and click on the “Add item” button.
  7. In the “Add authorized network” dialog box, enter the IP address range that you want to allow access to this service account.
  8. Click on the “Save” button to save your changes.

Once you have completed these steps, the Master Authorized Network will be enabled for the service account that you selected, and only the IP addresses that you specified will be able to access it.

Additional Reading: